The Good Good news for privacy advocates. Rising from the ashes of Mozilla's twice reincarnated Test Pilot program is a new, privacy-centric, third attempt. First beta out of the door is a desktop extension offering the 'Firefox Private Network', aka a free (at least...
Sentinel One News
Category: Sentinel One News
RIG Exploit Kit Chain Internals
The Zero2Hero malware course continues with Vitali Kremez explaining the RIG Exploit Kit and the infection chain internals that led to the Amadey Stealer and Clipboard Hijacker. Summary One of the active malware distribution vectors lately remain to be exploit kits...
macOS Notarization: Security Hardening or Security Theater?
Earlier this year, Apple introduced a new security measure called 'Notarization' to complement their existing strategies like Gatekeeper, XProtect, and the Malware Removal Tool. It would be fair to say that there's been a bit of confusion and not a little pushback...
Threat Actor Basics: Understanding the 5 Main Threat Types
Protecting the business in today's cybersecurity climate is all about staying up-to-date. Up-to-date with your security technology, up-to-date with security patches and up-to-date with the tools, techniques and procedures of different threat actors. In this post, we...
The Good, the Bad and the Ugly in Cybersecurity – Week 36
The Good The hero of the day is the city of New Bedford, Massachusetts. After (another) typical ransomware attack on a US city (this time, using the Ryuk ransomware) and a ransom request of $5.3 million, the city negotiated it down to $400k, and eventually moved on to...
Gootkit Banking Trojan | Part 3: Retrieving the Final Payload
Gootkit's final payload contains multiple Node.js scripts. Join Daniel Bunce as he reverse engineers the malware to take a deeper look at what it delivers. The Gootkit Banking Trojan was discovered back in 2014, and utilizes the Node.js library to perform a range of...
macOS Incident Response | Part 3: System Manipulation
In Part 1 and Part 2, we looked at collecting device, file and system data and how to retrieve data on user activity and behavior. In this final part of the series, we're going to look for evidence of system manipulation that could leave a device or a user vulnerable...
Endpoint Security | Winning the War Against Time
What is the one common denominator against any adversary? What is the most precious commodity of all in the struggle between attackers and defenders? What is the one advantage the adversary has, up till now, always had over us? The answer is time itself. The reason...
Reach Me
Request a Call Back by filling out and submitting the following form.








